wanhuoa-officeserverservlet-file-upload: Wanhu OA OfficeServerServlet - Arbitrary File Upload

日期: 2025-08-01 | 影响软件: Wanhu OA OfficeServerServlet | POC: 已公开

漏洞描述

Wanhu OA officeserverservlet file upload vulnerability

PoC代码[已公开]

id: wanhuoa-officeserverservlet-file-upload

info:
  name: Wanhu OA OfficeServerServlet - Arbitrary File Upload
  author: SleepingBag945
  severity: critical
  description: Wanhu OA officeserverservlet file upload vulnerability
  reference:
    - https://github.com/onMey/WH/blob/main/poc.py
    - http://wiki.peiqi.tech/wiki/oa/万户OA/万户OA%20OfficeServer.jsp%20任意文件上传漏洞.html
  metadata:
    verified: true
    max-request: 1
    fofa-query: app="万户网络-ezOFFICE"
  tags: wanhu,oa,officeserver,fileupload,intrusive,vuln

http:
  - method: GET
    path:
      - "{{BaseURL}}/defaultroot/officeserverservlet"

    matchers-condition: and
    matchers:
      - type: word
        words:
          - "DBSTEP V3.0"
          - "Post"
        condition: and

      - type: status
        status:
          - 200
# digest: 4a0a0047304502205cf6a801baf90ddc9837b11ec303ea4c571a3c8db0b4fcf5c5c1b4f495f49d6d0221009d1f6f0a58507b867e818910bc528c6d2cb6876c5315ea00f235ad9aa7978a41:922c64590222798bb761d5b6d8e72950

相关漏洞推荐